Flatnuke3 Myforum Cookie Parameter Authentication Bypass Vulnerability

Flatnuke3 is prone to an authentication-bypass vulnerability because it fails to adequately sanitize user-supplied input used for cookie-based authentication.

An attacker can exploit this vulnerability to gain administrative access to the affected application; other attacks are also possible.

This issue affects Flatnuke3-2007-10-10; other versions may also be vulnerable.


 

Privacy Statement
Copyright 2010, SecurityFocus